{"id":1341,"date":"2021-01-07T23:35:00","date_gmt":"2021-01-07T23:35:00","guid":{"rendered":"https:\/\/www.pax8.com\/future-blog\/hipaa-compliance-checklist\/"},"modified":"2023-05-17T01:19:22","modified_gmt":"2023-05-17T01:19:22","slug":"hipaa-compliance-checklist","status":"publish","type":"post","link":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/","title":{"rendered":"The MSP&#8217;s HIPAA Compliance Checklist"},"content":{"rendered":"<p>What is HIPAA compliance and how do I maintain it?<\/p>\n<p><em>Please note: This article and checklist are meant for general self-evaluation. This article and checklist do NOT certify you or your organization as HIPAA-compliant or certified.<\/em><\/p>\n<h2>Why HIPAA Compliance Matters for MSPs<\/h2>\n<p>HIPAA compliance is a complicated and delicate undertaking.\u00a0And when we say delicate, we mean delicate like a nuclear reactor, not delicate like a flower. You can\u2019t just\u00a0give your clients\u00a0a few HIPAA policies and go about business as usual, just like you\u00a0cannot\u00a0build a nuclear power plant and leave it alone. In fact, both require auditing, constant supervision, good staffing, good policies and procedures, and excellent reporting and investigation of any issues.<\/p>\n<p>Compliance with the federal government regarding Patient Health Information (PHI) and electronic Patient Health Information (ePHI) is a full-time job; a few careless mistakes can lead to a total meltdown.\u00a0Compliance\u00a0requires constant monitoring of both technical, physical, security, and administrative practices.\u00a0As MSPs, your lives are already busy enough; adding HIPAA compliance on top of all the other obligations you have\u00a0can seem\u00a0like\u00a0a\u00a0daunting\u00a0task.<\/p>\n<p>In this article,\u00a0we\u2019ll cover what it means to be compliant\u00a0and provide you with\u00a0some\u00a0resources to\u00a0help keep your company\u00a0and\u00a0your\u00a0clients\u00a0compliant.<\/p>\n<h2>Training staff and employees<\/h2>\n<p>You wouldn\u2019t just pick a random group of unqualified people to operate and man a nuclear power plant, so why would it be any different for HIPAA compliancy?<\/p>\n<p>Both your company and your clients\u2019 must train all staff\u00a0in\u00a0basic HIPAA rules and requirements. And in preparation for audits, the training\u00a0sessions\u00a0should be documented and recorded.\u00a0Since HIPAA laws are constantly changing or being tweaked, you should advise your clients to\u00a0designate\u00a0one person as the HIPAA Compliance, Privacy, and\/or Security Officer. If an incident does occur, staff members should be able to anonymously report\u00a0the\u00a0issue.<\/p>\n<p>Since neither your company nor your clients exist in an isolated bubble, the next group of people you need to think\u00a0about\u00a0are\u00a0<a href=\"https:\/\/www.hhs.gov\/hipaa\/for-professionals\/covered-entities\/sample-business-associate-agreement-provisions\/index.html\">Business Associates<\/a>\u00a0(BA).\u00a0MSPs\u00a0are considered to be\u00a0BAs, by the way, if they service a Covered Entity (CE) or other BAs.\u00a0Any\u00a0vendor that\u00a0come in contact with\u00a0PHI\u00a0is considered to be\u00a0a BA. Just like any outside workers who come into the nuclear power plant must first be vetted and outfitted with protective gear, BAs must sign a Business Associate Agreement (BAA) before\u00a0they are allowed access to any PHI. They also need to be audited to make sure they are HIPAA compliant.<\/p>\n<h2>Managing audits<\/h2>\n<p>Audits are not fun, but they are necessary to make sure everything and everyone\u00a0is\u00a0doing what they are supposed to\u00a0do. It\u2019s important to conduct the following audits\/assessments based on\u00a0<a href=\"https:\/\/explore.pax8.com\/nist-framework\/p\/1\">National\u00a0Institute of Standards and Technology (NIST) guidelines<\/a>:<\/p>\n<ul>\n<li>Administrative assessments to ensure that all staff are properly trained<\/li>\n<li>Privacy assessments to review policies, procedures, and testing of privacy controls<\/li>\n<li>Security risk assessments to give you an idea of how at risk your client\u2019s system is<\/li>\n<\/ul>\n<p>Once the assessments are complete, you should be able to identify the deficiencies within the system. These should be recorded and remediated\u00a0as soon as possible.<\/p>\n<h2>Remediations and identifying deficiencies<\/h2>\n<p>What is\u00a0the best way to fix deficiencies in a system? Well, it\u00a0helps\u00a0to\u00a0have some outside help.<\/p>\n<p><a href=\"https:\/\/www.pax8.com\/vendors\/compliancy-group\/\">Compliancy Group<\/a>\u00a0is the industry leader in HIPAA compliance software. They\u00a0assist\u00a0with everything from compliance coaching to audit support to verified compliance.\u00a0If going to the US Department of Health &amp; Human Services (HHS) website strikes fear into your hearts like the words &#8220;nuclear core meltdown,&#8221;\u00a0then\u00a0<a href=\"https:\/\/compliancy-group.com\/why-cg\/\">Compliancy Group<\/a>\u00a0might be one of our vendors that can help alleviate some of those worries.<\/p>\n<h2>Policies and procedures\u00a0<span data-ccp-props=\"{&quot;335559738&quot;:40}\">\u00a0<\/span><\/h2>\n<p>People\u00a0do not\u00a0just dive right into work\u00a0on their first day at a nuclear power plant. There are probably a few days or weeks of training where they learn about all the procedures they must follow.<\/p>\n<p>When it comes to HIPAA laws and regulations,\u00a0the relevant\u00a0policies and procedures are just as important. Not only do employees need to understand what they must do to stay HIPAA compliant, but there should be\u00a0a\u00a0written\u00a0form\u00a0of\u00a0the\u00a0policies for future reference or retraining purposes.<\/p>\n<p>HIPAA policies and procedures are a documented and structured way to make sure everyone in the company\u00a0follows\u00a0the same rules. All staff must read and attest to the policies and procedures. The attestation along with annual reviews must be documented. And in\u00a0the event of an incident or data breach, there should be a process set in place to manage it.<\/p>\n<h2>Reporting and investigations<\/h2>\n<p>Nuclear reactors are constantly under surveillance and any abnormalities are reported. Even minor incidents need to be documented in case they lead to bigger issues in the future. This is especially true in earthquake prone areas where even small tremors\u00a0could\u00a0damage the reactors. Small problems today can lead to\u00a0disasters\u00a0if they\u2019re ignored.<\/p>\n<p>With HIPAA compliance, you should set in place a system for both your company and your clients to track and report incidents and investigations. While you won\u2019t have to deal with a nuclear meltdown if privacy is breached,\u00a0you\u00a0could end up\u00a0paying\u00a0significant\u00a0fines. For many small and medium sized businesses,\u00a0this\u00a0is\u00a0the\u00a0equivalent\u00a0of\u00a0a\u00a0meltdown.<\/p>\n<p>To start,\u00a0you will\u00a0want to create reports to prove due diligence. You need to be able to show that each\u00a0incident\u00a0was reported,\u00a0and\u00a0then investigated. This investigation must be tracked and managed as well. Your staff should be well trained\u00a0in\u00a0what a breach\u00a0is,\u00a0the\u00a0various kinds\u00a0of breaches,\u00a0and they need to be able to report\u00a0any and all\u00a0breaches that they see.<\/p>\n<h2>Too Many Things to Keep Track Of?<\/h2>\n<p>As you probably gathered from this article, there are quite a few similarities between running a nuclear power plant and staying HIPAA-compliant. Both are complicated, have many moving parts,\u00a0require\u00a0attention to detail,\u00a0involve\u00a0ever-changing federal requirements, and\u00a0(occasionally)\u00a0deal\u00a0with a threat to human health\u00a0or human health data.<\/p>\n<p>Unlike nuclear power plants though, securing PHI is a lot less risky than\u00a0handling\u00a0and containing radioactive fission material. Software, like the one from\u00a0Compliancy\u00a0Group, helps manage risk, security, and government audits.<\/p>\n<p>You can also check out our easy-to-use\u00a0<a href=\"https:\/\/www.pax8nebula.com\/m\/5441c75915407950\/original\/Security_HIPPA-Compliance-Checklist_One-page_September-2022.pdf\" target=\"_blank\" rel=\"noopener\">HIPAA Compliance Checklist<\/a>. This quick, one-page list covers the most important points of HIPAA compliance and will give you a head start on avoiding fines, passing audits, and preventing that\u00a0proverbial\u00a0nuclear meltdown.<\/p>\n<p><a class=\"btn-primary\" href=\"https:\/\/www.pax8nebula.com\/m\/5441c75915407950\/original\/Security_HIPPA-Compliance-Checklist_One-page_September-2022.pdf\" target=\"_blank\" rel=\"noopener\">Get the guide<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>What is HIPAA compliance and how do I maintain it? Please note: This article and checklist are meant for general self-evaluation. This article and checklist do NOT certify you or your organization as HIPAA-compliant or certified. Why HIPAA Compliance Matters for MSPs HIPAA compliance is a complicated and delicate undertaking.\u00a0And when we say delicate, we [&hellip;]<\/p>\n","protected":false},"author":141,"featured_media":44,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_relevanssi_hide_post":"","_relevanssi_hide_content":"","_relevanssi_pin_for_all":"","_relevanssi_pin_keywords":"","_relevanssi_unpin_keywords":"","_relevanssi_related_keywords":"","_relevanssi_related_include_ids":"","_relevanssi_related_exclude_ids":"","_relevanssi_related_no_append":"","_relevanssi_related_not_related":"","_relevanssi_related_posts":"","_relevanssi_noindex_reason":"","site-sidebar-layout":"default","site-content-layout":"default","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"default","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[4,5],"tags":[],"class_list":["post-1341","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-msp","category-security"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>The MSP&#039;s HIPAA Compliance Checklist - Pax8 Blog<\/title>\n<meta name=\"description\" content=\"This article provides an overview of what HIPAA compliance is and why it is important to maintain it for MSPs.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"The MSP&#039;s HIPAA Compliance Checklist - Pax8 Blog\" \/>\n<meta property=\"og:description\" content=\"This article provides an overview of what HIPAA compliance is and why it is important to maintain it for MSPs.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/\" \/>\n<meta property=\"og:site_name\" content=\"Pax8 Blog\" \/>\n<meta property=\"article:published_time\" content=\"2021-01-07T23:35:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-05-17T01:19:22+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.pax8.com\/blog\/wp-content\/uploads\/sites\/13\/2023\/03\/MSP-HIPAA-Compliance-Checklist-Pax8.png\" \/>\n\t<meta property=\"og:image:width\" content=\"2000\" \/>\n\t<meta property=\"og:image:height\" content=\"1334\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"narnold\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"narnold\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/\"},\"author\":{\"name\":\"narnold\",\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/#\\\/schema\\\/person\\\/4f1f5ecebcf730cc2be7b763a310a63c\"},\"headline\":\"The MSP&#8217;s HIPAA Compliance Checklist\",\"datePublished\":\"2021-01-07T23:35:00+00:00\",\"dateModified\":\"2023-05-17T01:19:22+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/\"},\"wordCount\":1094,\"publisher\":{\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/wp-content\\\/uploads\\\/sites\\\/13\\\/2023\\\/03\\\/MSP-HIPAA-Compliance-Checklist-Pax8.png\",\"articleSection\":[\"MSPs\",\"Security\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/\",\"url\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/\",\"name\":\"The MSP's HIPAA Compliance Checklist - Pax8 Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/wp-content\\\/uploads\\\/sites\\\/13\\\/2023\\\/03\\\/MSP-HIPAA-Compliance-Checklist-Pax8.png\",\"datePublished\":\"2021-01-07T23:35:00+00:00\",\"dateModified\":\"2023-05-17T01:19:22+00:00\",\"description\":\"This article provides an overview of what HIPAA compliance is and why it is important to maintain it for MSPs.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/wp-content\\\/uploads\\\/sites\\\/13\\\/2023\\\/03\\\/MSP-HIPAA-Compliance-Checklist-Pax8.png\",\"contentUrl\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/wp-content\\\/uploads\\\/sites\\\/13\\\/2023\\\/03\\\/MSP-HIPAA-Compliance-Checklist-Pax8.png\",\"width\":2000,\"height\":1334,\"caption\":\"HIPAA Compliance Checklist - Pax8\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/hipaa-compliance-checklist\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The MSP&#8217;s HIPAA Compliance Checklist\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/\",\"name\":\"Pax8 Blog\",\"description\":\"Where IT pros go to keep up with the cloud\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/#organization\",\"name\":\"Pax8 Blog\",\"url\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/wp-content\\\/uploads\\\/sites\\\/13\\\/2023\\\/03\\\/pax8-logo-white-blog-300x300-1.png\",\"contentUrl\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/wp-content\\\/uploads\\\/sites\\\/13\\\/2023\\\/03\\\/pax8-logo-white-blog-300x300-1.png\",\"width\":300,\"height\":300,\"caption\":\"Pax8 Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/#\\\/schema\\\/person\\\/4f1f5ecebcf730cc2be7b763a310a63c\",\"name\":\"narnold\",\"url\":\"https:\\\/\\\/www.pax8.com\\\/blog\\\/author\\\/narnold\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"The MSP's HIPAA Compliance Checklist - Pax8 Blog","description":"This article provides an overview of what HIPAA compliance is and why it is important to maintain it for MSPs.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/","og_locale":"en_US","og_type":"article","og_title":"The MSP's HIPAA Compliance Checklist - Pax8 Blog","og_description":"This article provides an overview of what HIPAA compliance is and why it is important to maintain it for MSPs.","og_url":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/","og_site_name":"Pax8 Blog","article_published_time":"2021-01-07T23:35:00+00:00","article_modified_time":"2023-05-17T01:19:22+00:00","og_image":[{"width":2000,"height":1334,"url":"https:\/\/www.pax8.com\/blog\/wp-content\/uploads\/sites\/13\/2023\/03\/MSP-HIPAA-Compliance-Checklist-Pax8.png","type":"image\/png"}],"author":"narnold","twitter_card":"summary_large_image","twitter_misc":{"Written by":"narnold","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/#article","isPartOf":{"@id":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/"},"author":{"name":"narnold","@id":"https:\/\/www.pax8.com\/blog\/#\/schema\/person\/4f1f5ecebcf730cc2be7b763a310a63c"},"headline":"The MSP&#8217;s HIPAA Compliance Checklist","datePublished":"2021-01-07T23:35:00+00:00","dateModified":"2023-05-17T01:19:22+00:00","mainEntityOfPage":{"@id":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/"},"wordCount":1094,"publisher":{"@id":"https:\/\/www.pax8.com\/blog\/#organization"},"image":{"@id":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/#primaryimage"},"thumbnailUrl":"https:\/\/www.pax8.com\/blog\/wp-content\/uploads\/sites\/13\/2023\/03\/MSP-HIPAA-Compliance-Checklist-Pax8.png","articleSection":["MSPs","Security"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/","url":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/","name":"The MSP's HIPAA Compliance Checklist - Pax8 Blog","isPartOf":{"@id":"https:\/\/www.pax8.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/#primaryimage"},"image":{"@id":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/#primaryimage"},"thumbnailUrl":"https:\/\/www.pax8.com\/blog\/wp-content\/uploads\/sites\/13\/2023\/03\/MSP-HIPAA-Compliance-Checklist-Pax8.png","datePublished":"2021-01-07T23:35:00+00:00","dateModified":"2023-05-17T01:19:22+00:00","description":"This article provides an overview of what HIPAA compliance is and why it is important to maintain it for MSPs.","breadcrumb":{"@id":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/#primaryimage","url":"https:\/\/www.pax8.com\/blog\/wp-content\/uploads\/sites\/13\/2023\/03\/MSP-HIPAA-Compliance-Checklist-Pax8.png","contentUrl":"https:\/\/www.pax8.com\/blog\/wp-content\/uploads\/sites\/13\/2023\/03\/MSP-HIPAA-Compliance-Checklist-Pax8.png","width":2000,"height":1334,"caption":"HIPAA Compliance Checklist - Pax8"},{"@type":"BreadcrumbList","@id":"https:\/\/www.pax8.com\/blog\/hipaa-compliance-checklist\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.pax8.com\/blog\/"},{"@type":"ListItem","position":2,"name":"The MSP&#8217;s HIPAA Compliance Checklist"}]},{"@type":"WebSite","@id":"https:\/\/www.pax8.com\/blog\/#website","url":"https:\/\/www.pax8.com\/blog\/","name":"Pax8 Blog","description":"Where IT pros go to keep up with the cloud","publisher":{"@id":"https:\/\/www.pax8.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.pax8.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.pax8.com\/blog\/#organization","name":"Pax8 Blog","url":"https:\/\/www.pax8.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.pax8.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.pax8.com\/blog\/wp-content\/uploads\/sites\/13\/2023\/03\/pax8-logo-white-blog-300x300-1.png","contentUrl":"https:\/\/www.pax8.com\/blog\/wp-content\/uploads\/sites\/13\/2023\/03\/pax8-logo-white-blog-300x300-1.png","width":300,"height":300,"caption":"Pax8 Blog"},"image":{"@id":"https:\/\/www.pax8.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/www.pax8.com\/blog\/#\/schema\/person\/4f1f5ecebcf730cc2be7b763a310a63c","name":"narnold","url":"https:\/\/www.pax8.com\/blog\/author\/narnold\/"}]}},"_links":{"self":[{"href":"https:\/\/www.pax8.com\/blog\/wp-json\/wp\/v2\/posts\/1341","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.pax8.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.pax8.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.pax8.com\/blog\/wp-json\/wp\/v2\/users\/141"}],"replies":[{"embeddable":true,"href":"https:\/\/www.pax8.com\/blog\/wp-json\/wp\/v2\/comments?post=1341"}],"version-history":[{"count":0,"href":"https:\/\/www.pax8.com\/blog\/wp-json\/wp\/v2\/posts\/1341\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.pax8.com\/blog\/wp-json\/wp\/v2\/media\/44"}],"wp:attachment":[{"href":"https:\/\/www.pax8.com\/blog\/wp-json\/wp\/v2\/media?parent=1341"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.pax8.com\/blog\/wp-json\/wp\/v2\/categories?post=1341"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.pax8.com\/blog\/wp-json\/wp\/v2\/tags?post=1341"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}